New URI Browser Flaws Worse Than First Thought
narramissic writes "URI (Uniform Resource Identifier) bugs have become a hot topic over the past month, since researcher Thor Larholm showed how a browser could be tricked into sending malformed data to Firefox. Now, security researchers Billy Rios and Nathan McFeters say they've discovered a number of ways attackers could misuse the URI protocol handler technology to steal data from a victim's computer. 'It is possible through the URI to actually steal content form the user's machine and upload that content to a remote server of the attacker's choice,' said McFetters, a senior security advisor for Ernst & Young Global Ltd. 'This is all through functionality that the application provides.'"
Thanks dude!
I installed that update to XP, and now my computer runs like a dream. Microsoft finally got it right!
"I've got more toys than Teruhisa Kitahara."
Good thing I use Firefox and not that "URI browser". I feel safe.
You should check out their new browser too, at IE7.com. It's really amazing! I don't know what they did, but even the exploits that should work on Internet Explorer 7 don't!
We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
Yea, that'd be pointless. Blue wins hands down.
I hate printers.
Hey numbnuts, I know this is /. but there is nothing that MS can do to help this, nor anything they can do to mitigate the harm. Cut it out with the vitriol. You idiots have such double standards and it's starting to make me sick. When MS does it, it gets labeled FUD. When you do it it gets labeled +1 Insightful. I mean FFS, lets cut out the crap. Now go ahead. Mod me down. I got karma to burn. Fuckers.
I hate printers.
You installed Gentoo in less than 48 hours? Christ, how times change...
Meta will eat itself
I just pressed on that "slashdot://it.slashdot.org" link !!!